Information Systems Security Manager

Parsons

Baltimore (MD)

On-site

USD 158,000 - 284,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Parsons is seeking an Information Systems Security Manager in the United States to lead a shift toward a dynamic, real-time RMF-based posture. You will govern secure DevSecOps platforms, align automated risk thresholds, and coordinate with engineers and compliance to ensure continuous authorization.

The role requires extensive RMF, TS/SCI w/Poly, and cloud security expertise across AWS and Azure, with DoD IAM/IAT III and CISM/CISSP/SecurityX credentials.

Qualifications

  • Minimum 15 years relevant experience with Masters in CS, Cybersecurity, Information Assurance, Information Security System Engineering, or related discipline from an accredited college or University.
  • Active DoD IAM and/or IAT Level III, Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP), or SecurityX.
  • Mastery of the Risk Management Framework (RMF) and associated federal cybersecurity standards, including NIST SP 800-37, NIST SP 800-53, and CNSSI 1253.
  • Demonstrated understanding and experience with Enterprise-level Cloud Architecture & Security principles, including control inheritance and shared responsibility models across AWS and Azure.
  • DevSecOps practices, automated pipeline security (SAST, DAST, SCA), and CI/CD tools.
  • Experience as SETA contractor.
  • Demonstrated experience providing technical leadership on assignments.
  • Active TS SCI w/Polygraph required

Responsibilities

  • Govern a secure, pre-accredited DevSecOps platform designed for downstream applications to inherit security controls seamlessly.
  • Define, implement, and maintain automated risk thresholds, security baselines, and compliance rules integrated into CI/CD pipelines
  • Oversee real-time configuration tracking, live vulnerability assessments, and threat analytics to ensure ongoing compliance
  • Act as the interface translating automated pipeline data, SBOMs, and tool generated security metrics into actionable risk acceptance frameworks to the Task Lead.
  • Guide and orchestrate the POA&M process, transitioning it from a manual tracking spreadsheet to an automated, tool-driven lifecycle RMF
  • Set formal governance criteria outlining exactly what level of security vulnerabilities will automatically break a software build or block a production deployment
  • Validate that Terraform scripts, Helm charts, and cloud-native templates used to spin up environments are programmatically hardened against DISA STIGs and NIST baselines
  • Enforce rigorous software supply chain security standards, including automated container scanning, open-source dependency tracking, signature validation, and compliance with SLSA frameworks
  • Govern the Least Privilege Access model across the entire development community, strictly partitioning and isolated tenant developer environments from live, production-level pipelines
  • Serve as a collaborative bridge between system administrators, software engineers, cloud architects, and compliance officers to shift security left into the early design phases
  • Establish goals and plans that meet project objectives.

Skills

15+ years experience
RMF knowledge
DoD IAM/IAT III
CISM CISSP SecurityX
AWS & Azure security
DevSecOps CI/CD
SETA contractor
Leadership experience
TS SCI w/Poly

Education

Masters in CS/Cybersecurity

Tools

Terraform
Helm
CI/CD tooling

Job description

In a world of possibilities, pursue one with endless opportunities. Imagine Next!

At Parsons, you can imagine a career where you thrive, work with exceptional people, and be yourself. Guided by our leadership vision of valuing people, embracing agility, and fostering growth, we cultivate an innovative culture that empowers you to achieve your full potential. Unleash your talent and redefine what’s possible.

Job Description:

Parsons is looking for an amazingly talented Information Systems Security Manager to join our team! In this role you will get to lead the shift from static, point-in-time compliance assessments to a dynamic, real-time risk authorization posture RMF.

What You'll Be Doing:

  • Govern a secure, pre-accredited DevSecOps platform designed for downstream applications to inherit security controls seamlessly.

  • Define, implement, and maintain automated risk thresholds, security baselines, and compliance rules integrated directly into continuous integration/continuous deployment (CI/CD) pipelines

  • Oversee real-time configuration tracking, live vulnerability assessments, and threat analytics to ensure ongoing compliance

  • Act as the interface translating automated pipeline data, Software Bills of Materials (SBOMs), and tool generated security metrics into actionable risk acceptance frameworks to the Task Lead.

  • Guide and orchestrate the POA&M process, transitioning it from a manual tracking spreadsheet to an automated, tool-driven lifecycle RMF

  • Set formal governance criteria outlining exactly what level of security vulnerabilities (e.g., critical/high SAST, DAST, or container flaws) will automatically break a software build or block a production deployment DevSecOps Basics DevSecOps Roles & Responsibilities

  • Validate that Terraform scripts, Helm charts, and cloud-native templates used to spin up environments are programmatically hardened against DISA STIGs and NIST baselines

  • Enforce rigorous software supply chain security standards, including automated container scanning, open-source dependency tracking, signature validation, and compliance with SLSA frameworks Software Composition Analysis DoD Continuous Authorization Implementation Guide

  • Govern the Least Privilege Access model across the entire development community, strictly partitioning and isolated tenant developer environments from live, production-level pipelines

  • Serve as a collaborative bridge between system administrators, software engineers, cloud architects, and compliance officers to shift security left into the early design phases

  • Establish goals and plans that meet project objectives.

What Required Skills You'll Bring:

  • Minimum 15 years relevant experience with Masters Degree in Computer Science, Cybersecurity, Information Assurance, Information Security System Engineering, or related discipline from an accredited college or University.

  • Active DoD IAM and/or IAT Level III, Certified Information Security Manager (CISM), Certified Information Systems Security Professional (CISSP), or SecurityX

  • Mastery of the Risk Management Framework (RMF) and associated federal cybersecurity standards, including NIST SP 800-37, NIST SP 800-53, and CNSSI 1253 .

  • Demonstrated understanding and experience with Enterprise-level Cloud Architecture & Security principles, including control inheritance and shared responsibility models across AWS and Azure .

  • DevSecOps practices, automated pipeline security (SAST, DAST, SCA), and CI/CD tools.

  • Experience as SETA contractor.

  • Demonstrated experience providing technical leadership on assignments.

  • Active TS SCI w/Polygraph required

Security Clearance Requirement:

An active Top Secret SCI w/Polygraph security clearance is required for this position.

This position is part of our Federal Solutions team.

The Federal Solutions segment delivers resources to our US government customers that ensure the success of missions around the globe. Our intelligent employees drive the state of the art as they provide services and solutions in the areas of defense, security, intelligence, infrastructure, and environmental. We promote a culture of excellence and close-knit teams that take pride in delivering, protecting, and sustaining our nation's most critical assets, from Earth to cyberspace. Throughout the company, our people are anticipating what’s next to deliver the solutions our customers need now.

Salary Range: $157,500.00 - $283,500.00

We value our employees and want our employees to take care of their overall wellbeing, which is why we offer best-in-class benefits such as medical, dental, vision, paid time off, 401(k), life insurance, flexible work schedules, and holidays to fit your busy lifestyle!

Parsons is an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, veteran status or any other protected status.

About Us

Parsons is a digitally enabled solutions provider focused on the defense, security, and infrastructure markets. With nearly 75 years of experience, Parsons is uniquely qualified to deliver cyber/converged security, technology-based intellectual property, and other innovative services to federal, regional, and local government agencies, as well as to private industrial customers worldwide.

Parsons is an equal opportunity, drug-free employer committed to diversity in the workplace. Minority/Female/Disabled/Protected Veteran/LGBTQ+.

For more about Parsons, visit parsons.com and follow us on Facebook, Twitter, LinkedIn, and YouTube.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Information Systems Security Engineer
Senior Information Systems Security Engineer

Parsons • Fort Collins (CO)

On-site
USD 112,000 - 196,000
Information System Security Officer
Information System Security Officer

Parsons • Baltimore (MD)

On-site
USD 104,000 - 181,000
Cyber Security Systems Engineer
Cyber Security Systems Engineer

Parsons • Baltimore (MD)

On-site
USD 148,000 - 267,000
Medical
Dental
Vision
+5
System Administrator, Senior
System Administrator, Senior

Parsons • Linthicum (MD)

On-site
USD 148,000 - 267,000
Medical benefits
Dental benefits
Vision benefits
+5
System Administrator (TS-SCI w/Poly)
System Administrator (TS-SCI w/Poly)

Parsons • Columbia (MD)

On-site
USD 67,000 - 117,000
Medical
Dental
Vision
+6
Personnel Security Specialist (PerSS)
Personnel Security Specialist (PerSS)

Parsons • Bethesda (MD)

On-site
USD 88,000 - 155,000
Medical benefits
Dental benefits
Vision benefits
+5
Senior AI/ML Engineer - TS/SCI
Senior AI/ML Engineer - TS/SCI

Parsons • Columbia (MD)

Hybrid
USD 112,000 - 196,000
Medical
Dental
Vision
+5
Acquisition Lead (Cyber)
Acquisition Lead (Cyber)

Parsons • Arlington (VA)

On-site
USD 125,000 - 225,000
Medical benefits
Dental benefits
Paid time off
Data / Information Manager
Data / Information Manager

3M HEALTHCARE • San Diego (CA)

On-site
USD 112,000 - 196,000
Medical benefits
Dental benefits
Vision benefits
+6
AI Engineer, Principal - TS/SCI w/Poly
AI Engineer, Principal - TS/SCI w/Poly

Parsons • Baltimore (MD)

On-site
USD 125,100 - 225,200
Medical
Dental
Vision
+5